Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-30636

Опубликовано: 02 июл. 2024
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS3: 7.5

Описание

httpTokenCacheKey uses path.Base to extract the expected HTTP-01 token value to lookup in the DirCache implementation. On Windows, path.Base acts differently to filepath.Base, since Windows uses a different path separator (\ vs. /), allowing a user to provide a relative path, i.e. .well-known/acme-challenge/....\asd becomes ....\asd. The extracted path is then suffixed with +http-01, joined with the cache directory, and opened. Since the controlled path is suffixed with +http-01 before opening, the impact of this is significantly limited, since it only allows reading arbitrary files on the system if and only if they have this suffix.

РелизСтатусПримечание
devel

DNE

esm-infra/focal

DNE

focal

DNE

jammy

DNE

mantic

DNE

noble

DNE

upstream

not-affected

Windows only

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

not-affected

Windows only
esm-infra/bionic

not-affected

Windows only
esm-infra/focal

DNE

esm-infra/xenial

not-affected

Windows only
focal

DNE

jammy

DNE

mantic

DNE

noble

DNE

trusty/esm

not-affected

Windows only

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

not-affected

Windows only
esm-apps/jammy

not-affected

Windows only
esm-apps/xenial

not-affected

Windows only
esm-infra/focal

not-affected

Windows only
focal

not-affected

Windows only
jammy

not-affected

Windows only
mantic

DNE

noble

DNE

upstream

not-affected

Windows only

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra/focal

not-affected

Windows only
focal

not-affected

Windows only
jammy

DNE

mantic

DNE

noble

DNE

upstream

not-affected

Windows only

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

not-affected

Windows only
esm-apps/focal

not-affected

Windows only
focal

not-affected

Windows only
jammy

DNE

mantic

DNE

noble

DNE

upstream

not-affected

Windows only

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra/focal

DNE

focal

DNE

jammy

not-affected

Windows only
mantic

DNE

noble

DNE

upstream

not-affected

Windows only

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

not-affected

Windows only
esm-apps/xenial

not-affected

Windows only
focal

not-affected

Windows only
jammy

not-affected

Windows only
mantic

DNE

noble

DNE

upstream

not-affected

Windows only

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra/focal

DNE

focal

DNE

jammy

DNE

mantic

DNE

noble

DNE

upstream

not-affected

Windows only

Показывать по

РелизСтатусПримечание
devel

DNE

focal

not-affected

Windows only
jammy

not-affected

Windows only
mantic

not-affected

Windows only
noble

DNE

upstream

not-affected

Windows only

Показывать по

РелизСтатусПримечание
devel

not-affected

Windows only
esm-apps/noble

not-affected

Windows only
focal

not-affected

Windows only
jammy

not-affected

Windows only
mantic

not-affected

Windows only
noble

not-affected

Windows only
upstream

not-affected

Windows only

Показывать по

РелизСтатусПримечание
devel

not-affected

Windows only
focal

not-affected

Windows only
jammy

not-affected

Windows only
mantic

not-affected

Windows only
noble

not-affected

Windows only
upstream

not-affected

Windows only

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra/focal

DNE

esm-infra/xenial

not-affected

Windows only
focal

DNE

jammy

DNE

mantic

DNE

noble

DNE

upstream

not-affected

Windows only

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

not-affected

Windows only
esm-infra/focal

DNE

focal

DNE

jammy

DNE

mantic

DNE

noble

DNE

upstream

not-affected

Windows only

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

not-affected

Windows only
esm-infra/focal

DNE

focal

DNE

jammy

DNE

mantic

DNE

noble

DNE

upstream

not-affected

Windows only

Показывать по

EPSS

Процентиль: 48%
0.00247
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
nvd
больше 1 года назад

httpTokenCacheKey uses path.Base to extract the expected HTTP-01 token value to lookup in the DirCache implementation. On Windows, path.Base acts differently to filepath.Base, since Windows uses a different path separator (\ vs. /), allowing a user to provide a relative path, i.e. .well-known/acme-challenge/..\..\asd becomes ..\..\asd. The extracted path is then suffixed with +http-01, joined with the cache directory, and opened. Since the controlled path is suffixed with +http-01 before opening, the impact of this is significantly limited, since it only allows reading arbitrary files on the system if and only if they have this suffix.

CVSS3: 7.5
debian
больше 1 года назад

httpTokenCacheKey uses path.Base to extract the expected HTTP-01 token ...

EPSS

Процентиль: 48%
0.00247
Низкий

7.5 High

CVSS3

Уязвимость CVE-2022-30636